Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
264 commits
Select commit Hold shift + click to select a range
5f2d901
Update cliprinter default flag name (#3528)
guilhermocc Oct 25, 2022
bcc05ff
Issue #2700: Adds support for X509 and JWT specific SVID TTLs (#3445)
dennisgove Oct 26, 2022
dbd610a
Use test keys for keymanager and other tests (#3499)
Oct 26, 2022
80074ed
Improve run command test coverage (#3505)
guilhermocc Oct 26, 2022
f10a17d
Bump github.com/GoogleCloudPlatform/cloudsql-proxy from 1.32.0 to 1.3…
dependabot[bot] Oct 26, 2022
551464d
Bump cloud.google.com/go/secretmanager from 1.7.0 to 1.8.0 (#3530)
dependabot[bot] Oct 26, 2022
05fe6ae
Bump github.com/docker/docker (#3531)
dependabot[bot] Oct 27, 2022
740d395
Bump github.com/mattn/go-sqlite3 from 1.14.15 to 1.14.16 (#3532)
dependabot[bot] Oct 27, 2022
3cbfb62
Bump google.golang.org/api from 0.100.0 to 0.101.0 (#3533)
dependabot[bot] Oct 27, 2022
dd9e2e5
Bump cloud.google.com/go/security from 1.8.0 to 1.9.0 (#3539)
dependabot[bot] Oct 27, 2022
1e400b1
Fix some spelling issues (#3534)
keeganwitt Oct 27, 2022
9c7479d
Remove X509-SVID-TTL field from datastore model (#3541)
Oct 27, 2022
26127ae
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.63.0 to 1.64.0 (…
dependabot[bot] Oct 28, 2022
848b63f
Fix some spelling issues (#3546)
keeganwitt Oct 31, 2022
7cddbb3
Bump github.com/hashicorp/vault/sdk from 0.6.0 to 0.6.1 (#3547)
dependabot[bot] Oct 31, 2022
b67649a
Bump github.com/hashicorp/vault/api from 1.8.1 to 1.8.2 (#3548)
dependabot[bot] Oct 31, 2022
af1ef94
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.64.0 to 1.65.0 (…
dependabot[bot] Oct 31, 2022
f771c78
Bump github.com/gofrs/uuid from 4.3.0+incompatible to 4.3.1+incompati…
dependabot[bot] Oct 31, 2022
e98f90e
Bump github.com/shirou/gopsutil/v3 from 3.22.9 to 3.22.10 (#3552)
dependabot[bot] Nov 1, 2022
10781c5
Pin k8s image version in integration tests (#3461)
evan2645 Nov 1, 2022
39f9da2
Update Go to 1.19.3 (#3553)
rturner3 Nov 2, 2022
7e8e4fa
Update versions in main (#3561)
rturner3 Nov 3, 2022
c289fd1
Bring CHANGELOG.md up to date on main (#3562)
rturner3 Nov 3, 2022
375a86e
Update SECURITY.md (#3564)
rturner3 Nov 3, 2022
8f25c48
Update the documentation related with the Delegated Identity API (#3565)
amartinezfayo Nov 3, 2022
f110278
Bump github.com/prometheus/client_golang from 1.13.0 to 1.13.1 (#3556)
dependabot[bot] Nov 3, 2022
990a6a9
Bump google.golang.org/api from 0.101.0 to 0.102.0 (#3557)
dependabot[bot] Nov 3, 2022
71a2786
Bump github.com/googleapis/gax-go/v2 from 2.6.0 to 2.7.0 (#3566)
dependabot[bot] Nov 3, 2022
e4daeb6
Bump sigs.k8s.io/controller-runtime from 0.13.0 to 0.13.1 (#3567)
dependabot[bot] Nov 3, 2022
0b8e3a8
Bump github.com/open-policy-agent/opa from 0.45.0 to 0.46.1 (#3570)
dependabot[bot] Nov 4, 2022
45bb04a
Fix upstream-authority-cert-manager test on macOS (#3560)
rturner3 Nov 4, 2022
1962db8
Add Unity Technologies to adopters (#3568)
anvega Nov 4, 2022
57caf58
Bump cloud.google.com/go/secretmanager from 1.8.0 to 1.9.0 (#3569)
dependabot[bot] Nov 4, 2022
1c14fbb
Bump github.com/Azure/azure-sdk-for-go/sdk/azcore from 1.1.4 to 1.2.0…
dependabot[bot] Nov 4, 2022
c95086b
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.65.0 to 1.66.0 (…
dependabot[bot] Nov 4, 2022
c22dc57
Bump cloud.google.com/go/security from 1.9.0 to 1.10.0 (#3573)
dependabot[bot] Nov 4, 2022
d98577f
Fix racy bundle client tests (#3575)
Nov 4, 2022
9aab1cd
Fix racy AttestAgent tests (#3579)
Nov 8, 2022
800ab8d
Fixes #3581: Ensures that config default_svid_ttl can still be used (…
dennisgove Nov 8, 2022
8f8e843
Atomic writing of files on Windows with a specific security descripto…
amartinezfayo Nov 8, 2022
678e153
Bump version to 1.5.2 (#3590)
Nov 8, 2022
85dec80
Bump cloud.google.com/go/storage from 1.27.0 to 1.28.0 (#3586)
dependabot[bot] Nov 9, 2022
60c8c69
Bump google.golang.org/api from 0.102.0 to 0.103.0 (#3593)
dependabot[bot] Nov 9, 2022
14a30ca
Bump golang.org/x/time from 0.1.0 to 0.2.0 (#3588)
dependabot[bot] Nov 9, 2022
31bc188
Bump github.com/Azure/azure-sdk-for-go/sdk/azidentity (#3591)
dependabot[bot] Nov 9, 2022
c137a34
Bump github.com/hashicorp/go-plugin from 1.4.5 to 1.4.6 (#3594)
dependabot[bot] Nov 9, 2022
0af18e6
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.66.0 to 1.68.0 (…
dependabot[bot] Nov 9, 2022
9b558df
Fix spelling (#3584)
brandonmenc Nov 9, 2022
3a59711
Fix OIDC healthcheck to work with k8s healthprobes (#3580)
marcofranssen Nov 9, 2022
1e272b0
Introduce the `gcp_kms` KeyManager plugin (#3410)
amartinezfayo Nov 10, 2022
a1fccd1
Bump github.com/prometheus/client_golang from 1.13.1 to 1.14.0 (#3585)
dependabot[bot] Nov 11, 2022
f884f59
Fix race in TestDisposeStaleCryptoKeys (#3605)
amartinezfayo Nov 11, 2022
7bfcd47
Use `default_x509_svid_ttl` instead of the deprecated `default_svid_t…
amartinezfayo Nov 11, 2022
e303d75
Bump actions/dependency-review-action from 2 to 3 (#3608)
dependabot[bot] Nov 14, 2022
23b57c6
Bump github.com/mitchellh/cli from 1.1.4 to 1.1.5 (#3599)
dependabot[bot] Nov 14, 2022
f4fc4eb
Bump k8s.io/client-go from 0.25.3 to 0.25.4 (#3601)
dependabot[bot] Nov 14, 2022
60330f5
Write files on Windows with a specific security descriptor (#3604)
amartinezfayo Nov 15, 2022
c4fce5d
Added Sigstore workload attestor for SPIRE
willallves Jun 10, 2022
ddc2f14
Fix hcl on k8s tests
willallves Jun 14, 2022
8401e1b
Adjust on log message
willallves Jun 14, 2022
1a6ebf9
Adjust lint error
willallves Jun 14, 2022
7f7fa32
removed unnecessary code
willallves Jun 14, 2022
99cd939
refactor: A check has been created to verify if p.sigstore is differe…
Jun 15, 2022
06f50e6
fix: fixed lint errors
Jun 16, 2022
ef113d8
fix: fixed lint errors
Jun 16, 2022
626e65b
fix: fixed lint errors
Jun 16, 2022
484f203
refactor: pr adjustments related to cosign
Jun 22, 2022
3f350ce
refactor: pr adjustments of logs of errors
Jun 23, 2022
ee57747
refactor: pr adjustments of logs for errors
Jun 23, 2022
2e59f95
fixing CI error
willallves Jun 29, 2022
0309e5e
dependency test
willallves Jun 30, 2022
7375df4
progress: solving dependency errors, apply marcos diff (#36)
willallves Jun 30, 2022
c0d8bea
PR adjustments of code organization and change imageID to a list of s…
matheusdefarias Jun 30, 2022
26c469f
feat: adding plugin mutex lock to configureSigstore. (#37)
rodrigolc Jul 1, 2022
cd0a350
SelectorsFromSignature pointer refactor (#33)
rodrigolc Jul 2, 2022
99132f1
K8s test refactor (#43)
rodrigolc Jul 8, 2022
d1832ca
Moving the initial state of sigstore on suite to setup (#40)
tjamir Jul 13, 2022
b28df1d
refactor: refactor of sigstorecache code (#44)
matheusdefarias Jul 14, 2022
680744e
Refactor of ValidateImage and validateRefDigest functions (#48)
matheusdefarias Jul 14, 2022
cdcb7cf
refactor: refactor of sigstore.go code related to subject assignment …
matheusdefarias Jul 14, 2022
43953d2
Removed RFC doc link (#57)
willallves Jul 18, 2022
cb3f0e4
Add sigstore toggle (#56)
rodrigolc Jul 18, 2022
296a8c4
Adding sigstore cosign adjustments pr 20220715 (#59)
matheusdefarias Jul 18, 2022
7609c37
Adding log label (#60)
rodrigolc Jul 19, 2022
5e9c2cd
Fixed dependencies
willallves Jul 20, 2022
3fb506d
Fix k8s posix (#70)
rodrigolc Aug 31, 2022
558ebbc
Fixing sigstore docs (#71)
rodrigolc Aug 31, 2022
18da14d
Fix sigstore (#72)
rodrigolc Aug 31, 2022
45f6ad4
fixing rebase
willallves Sep 7, 2022
02c548e
Refactory on k8s unit tests (#90)
willallves Sep 12, 2022
525d7ea
refactor: deleted commented code, empty lines and changed code locati…
matheusdefarias Sep 13, 2022
9611882
refactor: changed DeepEqual to require.Equal and other changes (#81)
matheusdefarias Sep 13, 2022
cda7f50
Update doc/plugin_agent_workloadattestor_k8s.md
willallves Sep 14, 2022
8f934a2
refactor: pr requests to change from deepEqual to require.Equal, remo…
matheusdefarias Sep 15, 2022
09d16b4
Removed unnecessary code (#99)
willallves Sep 15, 2022
3dc5505
Added rekor text in docs (#101)
willallves Sep 15, 2022
ce48b93
Added test case for last element added as first of list (#106)
willallves Sep 20, 2022
0d6903c
fix: refactoring so sigstore errors make attestation fail completely …
rodrigolc Sep 20, 2022
01d87eb
tests: removed repeated tests of failing parsing rekorURL on mock (#112)
rodrigolc Sep 20, 2022
99c39fb
Fix sigstore_tests (#91)
rodrigolc Sep 20, 2022
e022699
Refactor hook struct (#122)
rodrigolc Sep 22, 2022
1f933d7
Fixed shorts comments (#114)
willallves Sep 22, 2022
c484d0f
Refactor: made requested changes in the sigstore.go file (#94)
joaoguazzelli Sep 22, 2022
8446994
Fix check empty rekorURL (#128)
rodrigolc Sep 23, 2022
e08825d
refactor: refactored SelectorValuesFromSignature to error out on all …
rodrigolc Sep 23, 2022
c2ea801
Removed private functions on tests (#135)
willallves Sep 26, 2022
28d9a09
Refactor contains usage (#129)
rodrigolc Sep 26, 2022
6a7143c
Adding error SelectorsFromSignatures (#136)
rodrigolc Sep 26, 2022
65fd90b
test: add hashed manifest test case (#137)
joaoguazzelli Sep 27, 2022
7322b8c
fix: fixed lint errors
willallves Sep 28, 2022
d7a6c75
cosign v1.9.0 for v1.12.1
willallves Sep 29, 2022
382eb84
Move sigstore out of windows build (#150)
Oct 4, 2022
ddd0d6d
Update pkg/agent/plugin/workloadattestor/k8s/k8s_posix_test.go
willallves Oct 10, 2022
abef8bd
Update pkg/agent/plugin/workloadattestor/k8s/k8s_posix_test.go
willallves Oct 10, 2022
27cfc53
Update pkg/agent/plugin/workloadattestor/k8s/k8s_posix_test.go
willallves Oct 10, 2022
db72307
fixed: tables md (#156)
willallves Oct 17, 2022
834ab88
Validation changed if key present (#158)
willallves Oct 17, 2022
7288800
Added more a test case (#160)
willallves Oct 17, 2022
37386f8
fixing rekorUrl handling (#163)
rodrigolc Oct 17, 2022
c1986c0
feat: implementation of sigstore cache check overflow test function (…
matheusdefarias Oct 17, 2022
d2c1f64
fix: removed unnecessary if statement (#166)
joaoguazzelli Oct 18, 2022
1373575
fix: added independent cache for each test in TestCacheimpl_PutSignat…
joaoguazzelli Oct 18, 2022
0e8bcf8
Adding sigstore cosign pr adjustments 01112022 (#169)
matheusdefarias Nov 10, 2022
e400cfb
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.68.0 to 1.70.0 (…
dependabot[bot] Nov 16, 2022
e79d6ca
Fix race in TestDisposeActiveCryptoKeys accessing the stored fake Cry…
amartinezfayo Nov 16, 2022
9e63376
Enable output format definition for spire-server agent commands (#3523)
guilhermocc Nov 16, 2022
62d1c14
Bump github.com/aws/aws-sdk-go-v2/config from 1.17.4 to 1.18.2 (#3623)
dependabot[bot] Nov 21, 2022
22ab6c7
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.70.0 to 1.72.0 (…
dependabot[bot] Nov 21, 2022
0d0a9e7
Bump github.com/GoogleCloudPlatform/cloudsql-proxy from 1.33.0 to 1.3…
dependabot[bot] Nov 21, 2022
97112fb
Bump google.golang.org/grpc from 1.50.1 to 1.51.0 (#3627)
dependabot[bot] Nov 21, 2022
6875464
Add markdown lint (#3494)
Nov 22, 2022
77f12b7
Update the `k8sbundle` plugin documentation to clarify when `kube_con…
amartinezfayo Nov 23, 2022
9ec4d35
Update help in Makefile to include lint commands (#3631)
amartinezfayo Nov 23, 2022
edf3589
Fixes in documentation for "gcp_kms" plugin (#3632)
amartinezfayo Nov 23, 2022
6c4cec1
Adjusting Marcos's comments (#174)
willallves Nov 23, 2022
3d4c8a2
Use cli printer server entry commands (#3628)
guilhermocc Nov 24, 2022
dedb04b
Do not try to close client if not initialized (#3638)
amartinezfayo Nov 25, 2022
4e4e5cd
Update list of required permissions (#3639)
amartinezfayo Nov 25, 2022
2b14e80
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.72.0 to 1.73.0 (…
dependabot[bot] Nov 29, 2022
bc71caa
Auto remove markdown lint container (#3643)
guilhermocc Nov 29, 2022
b395b9f
Reduce duplication in docker build (#3635)
marcofranssen Nov 30, 2022
7a26883
Improve image layers (#3633)
marcofranssen Nov 30, 2022
4aa9b7e
Add note for static building (#3646)
Dec 1, 2022
a2c1f06
Document existence of release container images (#3641)
rturner3 Dec 1, 2022
d65f477
Fix election RBAC YAML (#3617)
keeganwitt Dec 1, 2022
e99d25f
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.73.0 to 1.74.0 (…
dependabot[bot] Dec 1, 2022
2c69556
Bump github.com/aws/aws-sdk-go-v2/service/kms from 1.18.8 to 1.19.0 (…
dependabot[bot] Dec 1, 2022
ac9bc30
Bump github.com/shirou/gopsutil/v3 from 3.22.10 to 3.22.11 (#3651)
dependabot[bot] Dec 1, 2022
d59bde3
Use cli printer server bundle commands (#3624)
guilhermocc Dec 1, 2022
e6634a9
refactor: added a comment to verifyFunction in sigstore.go file (#179)
matheusdefarias Dec 1, 2022
b1c7fb7
Adding sigstore cosign pr adjustments 24112022 (#180)
matheusdefarias Dec 1, 2022
5b8d365
Remove strategy from Windows jobs (#3652)
marcofranssen Dec 1, 2022
4488f2c
Fix error declaration (#182)
joaoguazzelli Dec 1, 2022
b0cc07b
fix: per marcos' comments (#181)
rodrigolc Dec 1, 2022
764ed3c
Moving functions and declarations (#183)
rodrigolc Dec 1, 2022
f41fb65
Empty scheme not allowed anymore (#184)
rodrigolc Dec 1, 2022
4fe4258
cleanup test structs (#185)
rodrigolc Dec 1, 2022
36e05dc
misc: simplified errors and code flow (#186)
rodrigolc Dec 1, 2022
5ff4f7f
fix: removed noop false early return (#187)
rodrigolc Dec 1, 2022
a93dc2b
misc: reordered shouldSkipImage returns so images with empty IDs are …
rodrigolc Dec 1, 2022
2858b2f
misc: removed unused "verified" bool (#189)
rodrigolc Dec 1, 2022
7c06461
Add OIDC issuer to allowed subject list (#175)
rodrigolc Dec 1, 2022
9dc2206
Use the UpdateMask field when calling UpdateCryptoKey (#3653)
amartinezfayo Dec 1, 2022
fde87a6
Refactor push-images script to reduce duplication (#3656)
marcofranssen Dec 2, 2022
0b171a2
fix: added error message validation (#195)
joaoguazzelli Dec 2, 2022
a30f06e
Removing default rekor url (#178)
rodrigolc Dec 2, 2022
37bcb4f
misc: removed ineffective called boolean (#191)
rodrigolc Dec 2, 2022
122a16c
misc: hardcoding AttestContainerSignature reference values (#194)
rodrigolc Dec 2, 2022
7d5069d
misc: moved fields from single field struct (#193)
rodrigolc Dec 2, 2022
5e87db1
refactor: changed some sigstore_test.go code as suggested (#190)
matheusdefarias Dec 2, 2022
51e071a
misc: removed verbose message from require statements (#192)
rodrigolc Dec 2, 2022
917443e
feat: add private deployment validator (#170)
joaoguazzelli Dec 2, 2022
101807f
Bump cloud.google.com/go/kms from 1.6.0 to 1.7.0 (#3659)
dependabot[bot] Dec 2, 2022
ca5394d
Bump github.com/go-sql-driver/mysql from 1.6.0 to 1.7.0 (#3658)
dependabot[bot] Dec 2, 2022
43eb347
Bump cloud.google.com/go/storage from 1.28.0 to 1.28.1 (#3662)
dependabot[bot] Dec 3, 2022
d15f8de
Retry GetPublicKey if needed (#3655)
amartinezfayo Dec 3, 2022
0a85665
missing refactor comments (#196)
rodrigolc Dec 5, 2022
1844192
fix: added missing arg to checkOptsFunction call (#197)
rodrigolc Dec 5, 2022
fae20d1
fix: updated loglines and tests (#198)
rodrigolc Dec 5, 2022
2c93803
Bump golang.org/x/sys from 0.2.0 to 0.3.0 (#3663)
dependabot[bot] Dec 5, 2022
c10663c
Bump golang.org/x/time from 0.2.0 to 0.3.0 (#3665)
dependabot[bot] Dec 5, 2022
836ca61
Bump github.com/open-policy-agent/opa from 0.46.1 to 0.47.0 (#3664)
dependabot[bot] Dec 5, 2022
9b4794a
Bump cloud.google.com/go/iam from 0.7.0 to 0.8.0 (#3666)
dependabot[bot] Dec 5, 2022
a8aad77
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.74.0 to 1.75.0 (…
dependabot[bot] Dec 5, 2022
04b44cd
Fix race in TestGenerateKey (#3645)
amartinezfayo Dec 6, 2022
cd9dad0
Bump versions (#3668)
rturner3 Dec 7, 2022
84aa2c1
Upgrade to Go 1.19.4 (#3669)
rturner3 Dec 7, 2022
322f4cf
Merge commit '84aa2c1eb9724ab55cb7eb791628b18c57d3ffcd' into adding-s…
rodrigolc Dec 7, 2022
8407f71
Update CHANGELOG.md to include latest releases (#3670)
rturner3 Dec 7, 2022
d6989be
fixing go.mod and go.sum
rodrigolc Dec 7, 2022
58841eb
misssing typo fix from merge
rodrigolc Dec 7, 2022
5d8a362
Skip k8s-workload-registrar when publishing to ghcr.io (#3678)
marcofranssen Dec 7, 2022
08c4897
Rename spire-oidc-provider scratch image to oidc-discovery-provider (…
rturner3 Dec 7, 2022
33d979c
Bump github.com/uber-go/tally/v4 from 4.1.3 to 4.1.4 (#3672)
dependabot[bot] Dec 8, 2022
593c5e5
Bump github.com/open-policy-agent/opa from 0.47.0 to 0.47.1 (#3673)
dependabot[bot] Dec 8, 2022
4c8ae1e
Ignore config files from asdf version control manager (#3661)
guilhermocc Dec 9, 2022
dd2a038
Update test to verify disabled keys (#3686)
Dec 9, 2022
186af67
Update release documentation to reflect more currently followed pract…
rturner3 Dec 9, 2022
314a6d6
Fix push-images script (#3689)
azdagron Dec 9, 2022
a7a95a1
Update aws node attestor plugin to include new selectors (#3640)
guilhermocc Dec 9, 2022
1fc7ae6
Bump github.com/hashicorp/go-hclog from 1.3.1 to 1.4.0 (#3674)
dependabot[bot] Dec 12, 2022
f707313
resolve flaky test TestDisposeStaleCryptoKeys (#3695)
Dec 12, 2022
1754375
Bump github.com/open-policy-agent/opa from 0.47.1 to 0.47.3 (#3697)
dependabot[bot] Dec 13, 2022
95800d3
Bump version to 1.5.4 (#3701)
Dec 15, 2022
883a8b7
Replace usage of alpine images with scratch images (#3636)
rturner3 Dec 15, 2022
fd38fb0
fixed go mod
willallves Dec 16, 2022
ad249c5
fix merge
willallves Dec 16, 2022
eaf5c50
Adjusting on go.mod
willallves Dec 16, 2022
66b9b66
adjust *.md
willallves Dec 16, 2022
f81bdcc
adjust *.md
willallves Dec 16, 2022
66d3b01
adjust *.md
willallves Dec 16, 2022
265290f
Bump k8s.io/api from 0.25.4 to 0.26.0 (#3692)
dependabot[bot] Dec 16, 2022
9ab77cc
Bump cloud.google.com/go/iam from 0.8.0 to 0.9.0 (#3703)
dependabot[bot] Dec 16, 2022
c875b50
Missing Fixes (#199)
rodrigolc Dec 20, 2022
05520d1
merge spire/main into adding-sigstore-cosign
willallves Dec 20, 2022
5b6f29e
Add support for -output flag in spire server federation commands (#3660)
guilhermocc Dec 20, 2022
82cbc55
Do not test EOL databases (#3709)
bri365 Dec 21, 2022
db16fec
Add default value to output format flag description (#3713)
guilhermocc Dec 21, 2022
3cfae58
Utilize more native Make features to reduce duplication (#3679)
marcofranssen Dec 21, 2022
1f4a382
refactor: removed some empty lines and moved unexported functions and…
matheusdefarias Dec 22, 2022
2e693e3
Add fixes (#201)
joaoguazzelli Dec 22, 2022
ba9e424
refactor: removed some tests from k8s_windows_test.go file as suggest…
matheusdefarias Dec 22, 2022
feb4f85
markdown table fixes (#203)
rodrigolc Dec 22, 2022
ef3aa2e
moved OIDC token issuer Object Identifier var to sigstore.go (#204)
rodrigolc Dec 22, 2022
9d0b194
Limit workflow job permissions to bare minimum (#3706)
marcofranssen Dec 22, 2022
f6ca280
Add DS_Store to .gitignore (#3710)
Dec 22, 2022
2094f5d
Disable dynamic service config to ensure default one (#3712)
guilhermocc Dec 22, 2022
45d29f7
Bump github.com/aws/aws-sdk-go-v2/service/ec2 from 1.75.0 to 1.77.0 (…
dependabot[bot] Dec 22, 2022
fe4b0dd
Expand gcp kms plugin test scenarios (#3696)
guilhermocc Dec 22, 2022
42540ae
Add serial number and revision number to svid minting log entries (#3…
alexviktorov Dec 22, 2022
dbf91a1
Bump github.com/docker/docker (#3704)
dependabot[bot] Dec 23, 2022
a9897d0
Bump github.com/google/go-tpm-tools from 0.3.9 to 0.3.10 (#3718)
dependabot[bot] Dec 23, 2022
0101524
Bump github.com/open-policy-agent/opa from 0.47.3 to 0.47.4 (#3722)
dependabot[bot] Dec 26, 2022
fc31e86
Bump github.com/hashicorp/vault/sdk from 0.6.1 to 0.6.2 (#3720)
dependabot[bot] Dec 26, 2022
3ef60fc
Solve flaky tests caused by edge cases where audit logs from previous…
Dec 26, 2022
f659153
Bump google.golang.org/api from 0.103.0 to 0.105.0 (#3723)
dependabot[bot] Dec 27, 2022
202713a
Bump sigs.k8s.io/controller-runtime from 0.13.1 to 0.14.1 (#3719)
dependabot[bot] Dec 30, 2022
8aae8a3
Bump k8s.io/kube-aggregator from 0.23.3 to 0.26.0 (#3693)
dependabot[bot] Dec 30, 2022
afcbde6
Bump github.com/aws/aws-sdk-go-v2/service/secretsmanager (#3725)
dependabot[bot] Dec 30, 2022
3306e22
Clean some code
Jan 3, 2023
7a9a5bb
Merge remote-tracking branch 'upstream/main' into adding-sigstore-cosign
Jan 3, 2023
be2947f
Bump golang.org/x/crypto from 0.1.0 to 0.4.0 (#3724)
dependabot[bot] Jan 3, 2023
1399ff5
minor change
Jan 3, 2023
7c333d5
clean code and solve a configuration issue
Jan 4, 2023
4e8aee5
Bump github.com/shirou/gopsutil/v3 from 3.22.11 to 3.22.12 (#3728)
dependabot[bot] Jan 4, 2023
2a1b78a
Merge main
Jan 4, 2023
a7df8a5
Support running SPIRE as a Windows service (#3625)
amartinezfayo Jan 4, 2023
abf8449
Merge branch 'main' into adding-sigstore-cosign
Jan 4, 2023
0a9d640
Bump golang.org/x/net from 0.4.0 to 0.5.0 (#3730)
dependabot[bot] Jan 5, 2023
3ea2c7d
Merge main into branch
Jan 5, 2023
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
9 changes: 5 additions & 4 deletions .github/workflows/depsreview.yaml
Original file line number Diff line number Diff line change
@@ -1,14 +1,15 @@
name: 'Dependency Review'
on: [pull_request]

permissions:
contents: read

jobs:
dependency-review:
runs-on: ubuntu-latest

permissions:
contents: read

steps:
- name: 'Checkout Repository'
uses: actions/checkout@v3
- name: 'Dependency Review'
uses: actions/dependency-review-action@v2
uses: actions/dependency-review-action@v3
13 changes: 9 additions & 4 deletions .github/workflows/nightly_build.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -4,13 +4,18 @@ on:
# Random minute number to avoid GH scheduler stampede
- cron: '37 21 * * *'
workflow_dispatch: {}
permissions:
contents: read
packages: write

env:
NIGHTLY: true

jobs:
build-and-publish-images:
runs-on: ubuntu-20.04

permissions:
contents: read
packages: write

steps:
- name: Checkout
uses: actions/checkout@v3
Expand All @@ -31,4 +36,4 @@ jobs:
username: ${{ github.actor }}
password: ${{ secrets.GITHUB_TOKEN }}
- name: Push images
run: ./.github/workflows/scripts/push-scratch-images.sh nightly
run: ./.github/workflows/scripts/push-images.sh nightly -scratch
62 changes: 58 additions & 4 deletions .github/workflows/pr_build.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,14 +3,18 @@ on:
pull_request: {}
workflow_dispatch: {}
env:
GO_VERSION: 1.19.2
GO_VERSION: 1.19.4
permissions:
contents: read

jobs:
cache-deps:
name: cache-deps (linux)
runs-on: ubuntu-20.04

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand All @@ -30,6 +34,10 @@ jobs:
name: lint (linux)
runs-on: ubuntu-20.04
needs: cache-deps

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand Down Expand Up @@ -64,6 +72,10 @@ jobs:
OS: [ubuntu-20.04, macos-latest]
runs-on: ${{ matrix.OS }}
needs: cache-deps

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand All @@ -83,6 +95,10 @@ jobs:
name: unit-test (linux with race detection)
runs-on: ubuntu-20.04
needs: cache-deps

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand All @@ -102,6 +118,10 @@ jobs:
name: artifacts (linux)
runs-on: ubuntu-20.04
needs: [cache-deps]

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand Down Expand Up @@ -133,6 +153,10 @@ jobs:
name: images (linux)
runs-on: ubuntu-20.04
needs: [cache-deps]

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand Down Expand Up @@ -166,6 +190,10 @@ jobs:
name: images (windows)
runs-on: windows-2022
needs: artifact-windows

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand All @@ -189,6 +217,10 @@ jobs:
scratch-images:
runs-on: ubuntu-20.04
needs: [cache-deps]

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand Down Expand Up @@ -222,6 +254,10 @@ jobs:
name: integration (linux)
runs-on: ubuntu-20.04
needs: [cache-deps, images, scratch-images]

permissions:
contents: read

strategy:
fail-fast: false
matrix:
Expand Down Expand Up @@ -278,8 +314,10 @@ jobs:
name: integration (windows)
runs-on: windows-2022
needs: images-windows
strategy:
fail-fast: false

permissions:
contents: read

defaults:
run:
shell: msys2 {0}
Expand Down Expand Up @@ -327,6 +365,10 @@ jobs:
cache-deps-windows:
name: cache-deps (windows)
runs-on: windows-2022

permissions:
contents: read

steps:
- name: Checkout
uses: actions/checkout@v3
Expand All @@ -346,6 +388,10 @@ jobs:
name: lint (windows)
runs-on: windows-2022
needs: cache-deps-windows

permissions:
contents: read

defaults:
run:
shell: msys2 {0}
Expand Down Expand Up @@ -379,7 +425,7 @@ jobs:
mingw-w64-x86_64-toolchain
unzip
- name: Lint
run: make lint
run: make lint-code
- name: Tidy check
run: make tidy-check
- name: Generate check
Expand All @@ -389,6 +435,10 @@ jobs:
name: unit-test (windows)
runs-on: windows-2022
needs: cache-deps-windows

permissions:
contents: read

defaults:
run:
shell: msys2 {0}
Expand Down Expand Up @@ -421,6 +471,10 @@ jobs:
name: artifact (windows)
runs-on: windows-2022
needs: cache-deps-windows

permissions:
contents: read

defaults:
run:
shell: msys2 {0}
Expand Down
Loading